Skip to main content

Google Groups Used to Send Commands to Malware

posted onSeptember 13, 2009
by hitbsecnews

Symantec has uncovered a scheme to use a Google Groups newsgroup to sneak commands to malware on compromised computers.

The move is another example of attackers looking for covert ways to communicate to their bots. Earlier this year, attackers were found using Twitter as a command and control (C&C) mechanism. By integrating their messages with legitimate communications, attackers make it more difficult to identify and shut down their C&C, according to Symantec.

“This technique is analogous to the use of encoding messages in newspaper ads that were commonplace in spy novels,” Zulfikar Ramzan, technical director of Symantec Security Response, told eWEEK. “What attackers are taking advantage of are online mediums that allow pretty much anyone to post content and are both highly available as well as readily accessible from the outside. I believe they are going down this route, since it represents a very easy and inexpensive avenue for setting up command and control.”

Source

Tags

Viruses & Malware

You May Also Like

Recent News

Friday, November 29th

Tuesday, November 19th

Friday, November 8th

Friday, November 1st

Tuesday, July 9th

Wednesday, July 3rd

Friday, June 28th

Thursday, June 27th

Thursday, June 13th

Wednesday, June 12th

Tuesday, June 11th